Module 1 - Introduction
|
|
- Vincent White
- 5 years ago
- Views:
Transcription
1 How to comply with the Data Privacy Act of 2012 Module 1 - Introduction
2 Republic Act No August 15, 2012 SECTION 1. Short Title. This Act shall be known as the Data Privacy Act of SECTION. 2. Declaration of Policy. It is the policy of the State to protect the fundamental human right of privacy, of communication while ensuring free flow of information to promote innovation and growth. The State recognizes the vital role of information and communications technology in nation-building and its inherent obligation to ensure that personal information in information and communication systems in the government and in the private sector are secured and protected.
3 Which is more valuable? Data Money
4
5 Which is more valuable? Data Money
6
7 Which is more valuable? Data Money
8
9
10
11 Republic Act No August 15, 2012 SEC. 26. (b) Accessing sensitive personal information due to negligence shall be penalized by imprisonment ranging from three (3) years to six (6) years and a fine of not less than Five hundred thousand pesos (Php500,000.00) but not more than Four million pesos (Php4,000,000.00) shall be imposed on persons who, due to negligence, provided access to personal information without being authorized under this Act or any existing law. SEC. 35. Large-Scale. The maximum penalty in the scale of penalties respectively provided for the preceding offenses shall be imposed when the personal information of at least one hundred (100) persons is harmed, affected or involved as the result of the above mentioned actions.
12 Agenda for Workshop Introduction Data Protection Officer (DPO) Privacy Impact Assessment (PIA) Privacy Management Program (PMP) Privacy and Data Protection (PDP) Breach Management Framework (BMF)
13 Structure of RA 10173, the Data Privacy Act Sections 1-6. Definitions and General Provisions Sections National Privacy Commission Sections Rights of Data Subjects, and Obligations of Personal Information Controllers and Processors Section Provisions Specific to Government Section Penalties
14 Definitions Personal Information Personal information refers to any information whether recorded in a material form or not, from which the identity of an individual is apparent or can be reasonably and directly ascertained by the entity holding the information, or when put together with other information would directly and certainly identify an individual. RA , Section 3.g
15 when put together with other information? #4 Pili? Lily Ang? 10/24/55 # 4 Pili Lily Ang 10/24/55
16 Definitions Personal Information Sensitive Personal Information Sensitive personal information refers to personal information: (1) About an individual s race, ethnic origin, marital status, age, color, and religious, philosophical or political affiliations; (2) About an individual s health, education, genetic or sexual life of a person, or to any proceeding for any offense committed or alleged to have been committed by such person, the disposal of such proceedings, or the sentence of any court in such proceedings; (3) Issued by government agencies peculiar to an individual which includes, but not limited to, social security numbers, previous or current health records, licenses or its denials, suspension or revocation, and tax returns; and (4) Specifically established by an executive order or an act of Congress to be kept classified. RA , Section 3.l
17 Key Definitions PIC PIP Personal Information Controllers those who decide what data is collected and how it is processed (example: Bank X, Hospital Y). Personal Information Processors those who process data as instructed by the controllers (example: shared services, IT vendor, external lab).
18 Structure of RA 10173, the Data Privacy Act Sections 1-6. Definitions and General Provisions Sections National Privacy Commission Sections Rights of Data Subjects, and Obligations of Personal Information Controllers and Processors Section Provisions Specific to Government Section Penalties
19 Punishable Act Jail Term Fine (Pesos) Access due to negligence 1y to 3y 3y to 6y 500k to 4m Unauthorized processing 1y to 3y 3y to 6y 500k to 4m Improper disposal 6m to 2y 3y to 6y 100k to 1m Unauthorized purposes 18m to 5y 2y to 7y 500k to 2m Intentional breach 1y to 3y 500k to 2m Concealing breach 18m to 5y 500k to 1m Malicious disclosure 18m to 5y 500k to 1m Unauthorized disclosure 1y to 3y 3y to 5y 500k to 2m Combination of acts 3y to 6y 1m to 5m
20 Who is liable? Sec. 22. The head of each government agency or instrumentality shall be responsible for complying with the security requirements mentioned herein Sec. 34. Extent of Liability. If the offender is a corporation, partnership or any juridical person, the penalty shall be imposed upon the responsible officers, as the case may be, who participated in, or by their gross negligence, allowed the commission of the crime.
21
22 The Obligations which must be complied with by PICs and PIPs Data Privacy Act of 2012 IRRs (promulgated 2016) 2016 Series (issued) Circular Gov t Agencies Circular Data Sharing Circular Breach Mgmt Circular Rules Procedure 2017 Series Advisory DPO Guidelines Advisory PDS Guidelines Advisory PIA Guidelines Circular Registration
23 Pillar 1: Commit to Comply: Appoint a Data Protection Officer (DPO) Legal Basis: Sec. 21 of the DPA, Section 50 of the 50, Circular 16-01, and Advisory Sec. 21 (b) The personal information controller shall designate an individual or individuals who are accountable for the organization s compliance with this Act.
24 Pillar 1: Commit to Comply: Appoint a Data Protection Officer (DPO) Legal Basis: Sec. 21 of the DPA, Section 50 of the 50, Circular 16-01, and Advisory 17-01
25 Pillar 2: Know Your Risks: Conduct a Privacy Impact Assessment (PIA) Legal Basis: Sec. 20(c) of the DPA, Section 29 of the IRR, Advisory Sec. 20 (c) The determination of the appropriate level of security under this section must take into account the nature of the personal information to be protected, the risks represented by the processing, the size of the organization and complexity of its operations, current data privacy best practices and the cost of security implementation. How will you know what are the risks represented by the processing?
26 Program, Process, or Measure Privacy Risk Benefit Controls Impact Assessment X.1 X.2 X.3 X.25 High Low Unacceptable Medium Medium High Unreasonable Low High Low Acceptable High High?? Medium High Medium Acceptable Privacy risk is the probability that the activity involving data will result in harm, or a loss of the rights and freedoms of an individual. Controls may be applied in order to reduce severity, likelihood, and magnitude of the privacy risk.
27 WHO should participate in the PIA? Those involved in the Information Life Cycle Collection Disposal Use Sharing Storage
28 Privacy Risk Map I M P A C T Extreme Major Stressful Slight Nil Low Med High PROBABILITY
29 Pillar 2: Know Your Risks: Conduct a Privacy Impact Assessment (PIA) Legal Basis: Sec. 20(c) of the DPA, Section 29 of the IRR, Advisory 17-03
30 Pillar 3: Write Your Plan: Create Your Privacy Management Program (PMP) Legal Basis: Sec of the DPA, Sections and of the IRR, Circulars and 16-02
31 Principles Transparency no surprises in how the data collected is being processed Legitimate purpose required by law and not contrary to public morals Proportionality collect only what s needed and commensurate to the benefits
32 Pillar 3: Write Your Plan: Create Your Privacy Management Program (PMP) Legal Basis: Sec of the DPA, Sections and of the IRR, Circulars and 16-02
33 THE NPC DATA PRIVACY ACCOUNTABILITY AND COMPLIANCE FRAMEWORK I. GOVERNANCE II. RISK ASSESSMENT A. Choose a DPO B. Register C. Records of processing activities D. Conduct PIA III. ORGANIZATION E. Privacy Management Program F. Privacy Manual IV. DAY TO DAY G. Privacy Notice H-O. Data Subject Rights P. Data Life Cycle V. DATA SECURITY Q. Organizational R. Physical S. Technical Data Center Encryption Access Control Policy VI. BREACHES VII. THIRD PARTIES VIII. MANAGE HR IX. CONTINUITY X. PRIVACY ECOSYSTEM T. Data Breach Management; Security Policy Data Breach Response Team Incident Response Procedure Document Breach Notification U. Third Parties; Legal Basis for Disclosure Data Sharing Agreements Cross Border V. Trainings and Certifications W. Security Clearance X. Continuing Assessment and Development Regular PIA Review Contracts Internal Assessments Review PMP Accreditations Y. New technologies and standards Z. New legal requirements
34 Pillar 4: Be Accountable: Implement your Privacy & Data Protection (PDP) Measures Legal Basis: Sec and 38 of the DPA and Sections 17-24, of the IRR and Circular 16-04
35 Sections Rights of Data Subjects Right to be informed Right to object Right to access Right to correct/rectify Right to block/remove Right to data portability Right to file a complaint Right to be indemnified
36 Pillar 4: Be Accountable: Implement your Privacy & Data Protection (PDP) Measures Legal Basis: Sec. 20.a-e, 22 and 24 of the DPA, Sections of the IRR, Circular 16-01
37 Pillar 5: Be Prepared: Regularly exercise your Breach Reporting Procedures Legal Basis: Sec. 20.f and 30 of the DPA, Sections and 57 of the IRR, Circular IRR Sec. 38 (a) The Commission and affected data subjects shall be notified by the PIC within seventy-two (72) hours upon knowledge of, or when there is reasonable belief by the PIC or PIP that, a personal data breach requiring notification has occurred.
38 Pillar 5: Be Prepared: Regularly exercise your Breach Reporting Procedures Legal Basis: Sec. 20.f and 30 of the DPA, Sections and 57 of the IRR, Circular 16-03
39 Pillar 6: Registration Who should register? Personal Information Controllers and Personal Information Processors who: employ more than 250 persons process sensitive personal information of at least 1,000 individuals belong to sectors identified by the NPC where: the processing carried out is likely to pose a risk to the rights and freedoms of data subjects, and the processing is not occasional are service providers to government.
40 Pillar 6: Registration
41 Designating a DPO is the first essential step towards compliance. You cannot register your systems with the NPC unless you have a DPO. You cannot report your compliance activities unless you go through your DPO.
42 What happens if you don t comply? Sec. 7. Functions of the National Privacy Commission (b) Receive complaints, institute investigations, facilitate or enable settlement of complaints through the use of alternative dispute resolution processes, adjudicate, award indemnity on matters affecting any personal information, prepare reports on disposition of complaints and resolution of any investigation it initiates, and, in cases it deems appropriate, publicize any such report (c) Issue cease and desist orders, impose a temporary or permanent ban on the processing of personal information, upon finding that the processing will be detrimental to national security and public interest; (d) Compel or petition any entity, government agency or instrumentality to abide by its orders or take action on a matter affecting data privacy; (i) Recommend to the Department of Justice (DOJ) the prosecution and imposition of penalties specified in Sections 25 to 29 of this Act;
43 When should you comply? Yesterday. Obligations in the DPA and the IRR. September Additional Requirements in the IRR: Registration of Data Processing Systems and Automated Processing, 72-hour Breach Notification, Annual Incident Reporting October (for Government Agencies only) Additional security requirements in Circular
44 Capacity to Comply Compliance Commitment to Comply
45
46 In Closing: How the NPC can help Workshops to deliver the message and build capacity -Updates on new standards and/or circulars ( -Generic guidance and frameworks (facebook.com/ privacy.gov.ph) -When requested, advice on specific matters
47 End of Module 1. Any questions?
Challenges in complying with the Data Privacy Act of Damian Mapa Deputy Privacy Commissioner
Challenges in complying with the Data Privacy Act of 2012 Damian Mapa Deputy Privacy Commissioner Executive Summary In order to prevent and detect crime as well as investigate and prosecute it, a law
More informationMAPUA UNIVERSITY DATA PRIVACY MANUAL
MAPUA UNIVERSITY DATA PRIVACY MANUAL Table of Contents I. Introduction 3 II. Policy Statement 3 III. Definitions 4 IV. Scope and Limitations 7 V. Collection of Personal Information 7 A. Privacy Principles
More informationApplications for accreditation: Membership. Compilation of membership accreditation assessment received on 9 July 2016
Item 3(b)(i) Applications for accreditation: Membership Compilation of membership accreditation assessment received on 9 July 2016 The Secretariat provides this compilation of 4 membership accreditation
More informationThe NATIONAL CONGRESS decrees: CHAPTER I PRELIMINARY PROVISIONS
Provides for the protection of personal data and changes Law No. 12,965, of April 23, 2014 (the Brazilian Internet Law ). The NATIONAL CONGRESS decrees: CHAPTER I PRELIMINARY PROVISIONS Art. 1 This Law
More informationData Protection Act 1998 Policy
Data Protection Act 1998 Policy Responsibility for Policy: Relevant to: University Secretary All Staff, Students and Academic Partnerships Approved by: SMT in September 2016 Responsibility for Document
More informationMedical Group Management Association of Mississippi Bylaws
Medical Group Management Association of Mississippi Bylaws Article I NAME: The name of this organization will be Medical Group Management Association of Mississippi, Inc. and will be referred to later
More informationTHE PROCESSING OF PERSONAL DATA (PROTECTION OF INDIVIDUALS) LAW 138 (I) 2001 PART I GENERAL PROVISIONS
THE PROCESSING OF PERSONAL DATA (PROTECTION OF INDIVIDUALS) LAW 138 (I) 2001 PART I GENERAL PROVISIONS Short title. 1. This Law may be cited as the Processing of Personal Data (Protection of Individuals)
More informationPresentation to IAPP November 18, EU Data Protection. Monday 18 November 13
Presentation to IAPP November 18, 2013 EU Data Protection 1 Table of Contents 1. Introduction 2. Scope 3. Substantive Obligations 4. Formal Obligations 5. International Transfers 6. Enforcement 7. Sanctions,
More informationELECTRONIC DATA PROTECTION ACT An Act to provide for protection to electronic data with regard to the processing of electronic data in Pakistan
ELECTRONIC DATA PROTECTION ACT 2005 An Act to provide for protection to electronic data with regard to the processing of electronic data in Pakistan Whereas it is expedient to provide for the processing
More informationThe Ministry of Technology, Communication and Innovation and The Data Protection Office. Workshop On DATA PROTECTION ACT 2017
The Ministry of Technology, Communication and Innovation and The Data Protection Office Workshop On DATA PROTECTION ACT 2017 Tuesday 06 March 2018 from 08.30 hrs 15.30 hrs InterContinental Mauritius Resort,
More informationData Protection Bill [HL]
[AS AMENDED IN COMMITTEE] CONTENTS PART 1 PRELIMINARY 1 Overview 2 Terms relating to the processing of personal data PART 2 GENERAL PROCESSING CHAPTER 1 SCOPE AND DEFINITIONS 3 Processing to which this
More informationBYLAWS OF INTERNATIONAL DETAILING ASSOCIATION As revised by a vote of the membership
BYLAWS OF INTERNATIONAL DETAILING ASSOCIATION As revised by a vote of the membership 03.31.12 These Bylaws shall regulate the affairs of the Corporation, subject to the provisions of the Corporation's
More informationCHAPTER [INSERT] DATA PROTECTION BILL Acts [insert] ARRANGEMENT OF SECTIONS PART I PART II
CHAPTER [INSERT] DATA PROTECTION BILL Acts [insert] ARRANGEMENT OF SECTIONS PART I PRELIMINARY 1. Short Title 2. Interpretation 3. Scope of Application PART II DATA PROTECTION AUTHORITY 4. Establishment
More informationTHE PERSONAL DATA PROTECTION BILL, 2018: A SUMMARY
July 30, 2018 THE PERSONAL DATA PROTECTION BILL, 2018: A SUMMARY The report issued by the Committee of Experts under the Chairmanship of Justice B.N. Srikrishna (Report) 1 and the draft of the Personal
More informationOBJECTS AND REASONS. Arrangement of Sections PART I. Preliminary PART II. Licensing Requirements for International Service Providers
1 OBJECTS AND REASONS This Bill would provide for the regulation of the providers of international corporate and trust services and for related matters. Section 1. Short title. 2. Interpretation. 3. Application
More informationPERSONAL INFORMATION PROTECTION ACT
PERSONAL INFORMATION PROTECTION ACT Promulgated on March 29, 2011 Effective on September 30, 2011 CHAPTER I. GENERAL PROVISIONS Article 1 (Purpose) The purpose of this Act is to provide for the processing
More informationTITLE XXX OCCUPATIONS AND PROFESSIONS
New Hampshire Registration of Medical Technicians pg. 1 TITLE XXX OCCUPATIONS AND PROFESSIONS CHAPTER 328-I BOARD OF REGISTRATION OF MEDICAL TECHNICIANS Section 328-I:1 In this chapter: I. "Board'' means
More informationEnforcing HIPAA Administrative Simplification: Dispassionate Enforcement or Compassionate Prosecution?
Enforcing HIPAA Administrative Simplification: Dispassionate Enforcement or Compassionate Prosecution? By: Alan S. Goldberg, JD, LLM* Goulston & Storrs, Boston, MA, Washington, DC, and London, UK Past
More informationPROJET DE LOI ENTITLED. The Data Protection (Bailiwick of Guernsey) Law, 2017 ARRANGEMENT OF SECTIONS PART I PRELIMINARY
PROJET DE LOI ENTITLED The Data Protection (Bailiwick of Guernsey) Law, 2017 ARRANGEMENT OF SECTIONS PART I PRELIMINARY 1. Object of this Law. 2. Application. 3. Extent. 4. Exception for personal, family
More informationALABAMA ASSOCIATION OF PUBLIC PERSONNEL ADMINISTRATORS ALABAMA CHAPTER IPMA-HR BYLAWS ARTICLE I NAME AND GEOGRAPHIC AREA
ALABAMA ASSOCIATION OF PUBLIC PERSONNEL ADMINISTRATORS ALABAMA CHAPTER IPMA-HR BYLAWS ARTICLE I NAME AND GEOGRAPHIC AREA Section 1. This chapter shall be known as the Alabama Chapter of the International
More informationData Protection Bill [HL]
[AS AMENDED IN PUBLIC BILL COMMITTEE] CONTENTS PART 1 PRELIMINARY 1 Overview 2 Protection of personal data 3 Terms relating to the processing of personal data PART 2 GENERAL PROCESSING CHAPTER 1 SCOPE
More informationDATA PROTECTION LAWS OF THE WORLD. Egypt
DATA PROTECTION LAWS OF THE WORLD Egypt Downloaded: 21 July 2018 EGYPT Last modified 26 January 2017 LAW Egypt does not have a law which regulates protection of personal data. However, there are some piecemeal
More informationLBP LEASING AND FINANCE CORPORATION INTERIM FREEDOM OF INFORMATION MANUAL (Patterned after GCG FOI Manual: July 2017)
LBP LEASING AND FINANCE CORPORATION INTERIM FREEDOM OF INFORMATION MANUAL (Patterned after GCG FOI Manual: July 2017) A. OVERVIEW 1. STATEMENT OF POLICY It is the policy of the Corporation to ensure compliance
More informationInternational Privacy Laws: Those New EU Data Protection Regulations Do Apply to You!
International Privacy Laws: Those New EU Data Protection Regulations Do Apply to You! The Forum on Education Abroad Thursday, March 22, 2018 Presented By: Gian Franco Borio, Legal Counsel to the Association
More informationLaw Enforcement processing (Part 3 of the DPA 2018)
Law Enforcement processing (Part 3 of the DPA 2018) Introduction This part of the Act transposes the EU Data Protection Directive 2016/680 (Law Enforcement Directive) into domestic UK law. The Directive
More informationCOVERAGE CRIMINAL LAW 2014 BAR EXAMINATIONS. A. Book 1 (Articles 1-99, RPC; exclude the provisions on civil liability)
COVERAGE CRIMINAL LAW 2014 BAR EXAMINATIONS I. Revised Penal Code (RPC) and related Special Laws A. Book 1 (Articles 1-99, RPC; exclude the provisions on civil liability) 1. Fundamental principles a) Definition
More information(d) "Incarceration" and "confinement" do not include electronic home monitoring.
Minn. Stat. 243.166 OFFENDERS. (2012) REGISTRATION OF PREDATORY Subd. 1a. Definitions. (a) As used in this section, unless the context clearly indicates otherwise, the following terms have the meanings
More informationAct No. 502 of 23 May 2018
Act No. 502 of 23 May 2018 This version has been translated for the Danish Ministry of Justice. The official version was published in Lovtidende (the Law Gazette) on 24 May 2018. Only the Danish version
More information1.1: The name of this organization is "American Council for Construction Education, Inc.", hereinafter referred to as ACCE.
BY-LAWS ARTICLE ONE - NAME 1.1: The name of this organization is "American Council for Construction Education, Inc.", hereinafter referred to as ACCE. ARTICLE TWO - PURPOSES 2.1: The purposes for which
More informationHealth Practitioners Competence Assurance Act 2003 Complaints and Discipline Process
Health Practitioners Competence Assurance Act 2003 Complaints and Discipline Process The following notes have been prepared to explain the complaints process under the Health Practitioners Competence Assurance
More informationAS TABLED IN THE HOUSE OF ASSEMBLY
AS TABLED IN THE HOUSE OF ASSEMBLY A BILL entitled DIGITAL ASSET BUSINESS ACT 2018 TABLE OF CONTENTS 1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 PART 1 PRELIMINARY Citation
More informationAnti-Bribery Policy. Policies, Guidance & Procedures. The Collett School, St Luke s School Forest House Education Centre
The Collett School, St Luke s School Forest House Education Centre Policies, Guidance & Procedures Anti-Bribery Policy Date established: September 2015 Reviewed: August 2017 Date for review: September
More informationGAMING SECURITY PROFESSIONALS OF CANADA PROFESSIONNELS EN SÉCURITÉ DU JEU DU CANADA
GAMING SECURITY PROFESSIONALS OF CANADA PROFESSIONNELS EN SÉCURITÉ DU JEU DU CANADA BYLAWS GAMING SECURITY PROFESSIONALS OF CANADA - BYLAWS - Section I NAME OF THE ASSOCIATION The name of the association
More informationChapter 1: Interpretation
APPENDIX 72 - PAGE 1 OF 16 GENETIC INFORMATION LAW, REGULATIONS 2002 Genetic Information Law Regulations, 2000 The purpose of the law Chapter 1: Interpretation 1. The purpose of this Act to regulate genetic
More information16 March Purpose & Introduction
Factsheet on the key issues relating to the relationship between the proposed eprivacy Regulation (epr) and the General Data Protection Regulation (GDPR) 1. Purpose & Introduction As the eprivacy Regulation
More informationHUU-AY-AHT FIRST NATIONS
HUU-AY-AHT FIRST NATIONS REFERENDUM AND RECALL ACT The Huu-ay-aht Legislature enacts this law to establish a fair system for conducting a referendum, recalling a Council member and petitioning for an amendment
More informationSENATE BILL No February 14, 2017
AMENDED IN ASSEMBLY SEPTEMBER 7, 2017 AMENDED IN ASSEMBLY SEPTEMBER 5, 2017 AMENDED IN ASSEMBLY AUGUST 21, 2017 AMENDED IN ASSEMBLY JULY 17, 2017 AMENDED IN ASSEMBLY JUNE 29, 2017 AMENDED IN SENATE MAY
More informationDATA PROTECTION LAWS OF THE WORLD. South Korea
DATA PROTECTION LAWS OF THE WORLD South Korea Downloaded: 31 August 2018 SOUTH KOREA Last modified 26 January 2017 LAW In the past, South Korea did not have a comprehensive law governing data privacy.
More informationA Legal Overview of the Data Protection Act By: Mrs D. Madhub Data Protection Commissioner
A Legal Overview of the Data Protection Act 2017 By: Mrs D. Madhub Data Protection Commissioner 06.02.2018 Overview The Data Protection Act 2017 Aim of the Act Major changes brought in the new Act Key
More informationPurposes of the Law. Information of Public Importance. Public Authority Body. Legal Presumptions of Justified Interest
LAW ON FREE ACCESS TO INFORMATION OF PUBLIC IMPORTANCE I Basic Provisions Purposes of the Law Article 1 This Law regulates the rights to access information of public importance held by public authority
More informationAccess to Personal Information Procedure
Purpose of The sixth principle of the Data Protection Act 1998 gives rights to individuals in respect of the personal data that organisations hold about them. The Act says that: Personal data shall be
More informationEUROPEAN COMMISSION DIRECTORATE-GENERAL JUSTICE
EUROPEAN COMMISSION DIRECTORATE-GENERAL JUSTICE Directorate C: Fundamental rights and Union citizenship Unit C.3: Data protection Commission Decision C(2004)5721 SET II Standard contractual clauses for
More informationCode of Practice - Conduct of Officers of NAMA
Code of Practice - Conduct of Officers of NAMA This Code of Practice was approved by the Minister for Finance on 6 th July 2017 NATIONAL ASSET MANAGEMENT AGENCY Code of Practice and Professional Conduct
More informationDATA SHARING AND PROCESSING
DATA SHARING AND PROCESSING Capita Business Services Limited March 2016 Version 1.3 TABLE OF CONTENTS: Item Heading Page 1 Data Processing Agreement 2 2 Data Protection Act 1998 2 3 Data Protection Act
More informationBYLAWS of SSPC: THE SOCIETY FOR PROTECTIVE COATINGS
BYLAWS of SSPC: THE SOCIETY FOR PROTECTIVE COATINGS Adopted June 17, 1967 Revised February 23, 1986 Revised December 3, 1989 Revised May 17, 1993 Revised November 13, 1994 Revised May 23, 1995 Revised
More informationSUBJECT: NATIONAL GUIDELINES ON THE ISSUANCE OF COMPLIANCE CERTIFICATE FOR AGRICULTURAL AND FISHERIES MACHINERY
1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 SUBJECT: NATIONAL GUIDELINES ON THE ISSUANCE OF COMPLIANCE CERTIFICATE
More informationEuropean College of Business and Management Data Protection Policy
European College of Business and Management Data Protection Policy 1. INTRODUCTION 1.1 The European College of Business and Management (ECBM) is committed to full compliance with the Data Protection Act
More informationbylaws The Sudbury Savoyards, Inc
bylaws The Sudbury Savoyards, Inc ARTICLE I - NAME AND PRINCIPAL OFFICE The name of this Corporation is The Sudbury Savoyards, Inc., (hereafter The Sudbury Savoyards ). Its principal office shall be as
More informationMEMORANDUM. RE: NYC Lobbying Law Amendments Local Laws 15, 16 and 17
MEMORANDUM TO: FROM: Clients and Friends Lawyers Alliance for New York RE: NYC Lobbying Law Amendments Local Laws 15, 16 and 17 DATE: June 22, 2006 On June 13, 2006 Mayor Bloomberg signed into law three
More informationCHAPTER 308B ELECTRONIC TRANSACTIONS
CHAPTER 308B ELECTRONIC TRANSACTIONS 2001-2 This Act came into operation on 8th March, 2001. Amended by: This Act has not been amended Law Revision Orders The following Law Revision Order or Orders authorized
More informationSwedish Code of Statutes SFS 2010:682 Act Governing the Amendment to the Tobacco Act (1993:581);
Swedish Code of Statutes SFS 2010:682 Act Governing the Amendment to the Tobacco Act (1993:581); Date of Adoption: 17 June 2010 Date of entry into force: 1 August 2010 According to Parliamentary decision
More informationWashington Association of Building Officials Accredited Code Official Program
Washington Association of Building Officials Accredited Code Official Program WABO recognizes and supports the jurisdictions, agencies, and individuals responsible for safeguarding life, health and property
More informationIs information about legal entities personal data? No. The DPA only applies to information about individuals as opposed to legal entities.
General I Data Protection Laws National Legislation General data protection laws The amended law of 2 August 2002 on the protection of persons with regard to the processing of personal data (the DPA )
More informationPersonal Data Protection Act
Personal Data Protection Act Promulgated State Gazette No. 1/4.01.2002, effective 1.01.2002, supplemented, SG No. 70/10.08.2004, effective 1.01.2005, SG No. 93/19.10.2004, No. 43/20.05.2005, effective
More informationGeneral Rules on the Processing of Personal Data SCHEDULE 1 DATA TRANSFER AGREEMENT (Data Controller to Data Controller transfers)...
DATA PROTECTION REGULATIONS 2015 DATA PROTECTION REGULATIONS 2015 General Rules on the Processing of Personal Data... 1 Rights of Data Subjects... 6 Notifications to the Registrar... 7 The Registrar...
More informationTHE CONSTITUTION OF THE ANTHROPOLOGY GRADUATE STUDENT ASSOCIATION (ANTHRO GRADS) CALIFORNIA STATE UNIVERSITY, LONG BEACH (CSULB)
THE CONSTITUTION OF THE ANTHROPOLOGY GRADUATE STUDENT ASSOCIATION (ANTHRO GRADS) CALIFORNIA STATE UNIVERSITY, LONG BEACH (CSULB) Article I. Name of Organization: This association shall be known as The
More informationAPPENDIX A: District Model Constitution
APPENDIX A: District Model Constitution January 2018 1.1 A District Association shall have a Constitution or By-Law which includes, but is not limited to, the following: a) The name of the District Association
More informationENROLLED HOUSE BILL No. 4928
Act No. 130 Public Acts of 2005 Approved by the Governor September 28, 2005 Filed with the Secretary of State September 29, 2005 EFFECTIVE DATE: January 1, 2006 STATE OF MICHIGAN 93RD LEGISLATURE REGULAR
More informationData Protection Policy
Data Protection Policy Perth: Craigie and Moncreiffe CHARITY NO. SC001330 CONTENTS 1. Overview 2. Data Protection Principles 3. Personal Data 4. Special Category Data 5. Processing 6. How personal data
More informationREVISOR XX/BR
1.1 A bill for an act 1.2 relating to public safety; eliminating stays of adjudication and stays of imposition 1.3 in criminal sexual conduct cases; requiring sex offenders to serve lifetime 1.4 conditional
More informationPolicy/Procedure Statement
Policy/Procedure Statement POLICY NO.: C-001 ISSUE DATE: October 1, 2013 REVISED ON: January 1, 2017. ORIGINATOR: Compliance Officer SUBJECT: COMPLIANCE PLAN I. POLICY: The Detroit Wayne Mental Health
More informationBYLAWS OF Open Source Hardware Association ARTICLE I MEMBERS
BYLAWS OF Open Source Hardware Association ARTICLE I MEMBERS Section 1. Membership. Membership shall be open to all persons interested in the purposes of the Corporation. Section 2. Membership Dues. The
More informationIN THE UNITED STATES DISTRICT COURT FOR THE WESTERN DISTRICT OF MISSOURI WESTERN DIVISION
IN THE UNITED STATES DISTRICT COURT FOR THE WESTERN DISTRICT OF MISSOURI WESTERN DIVISION UNITED STATES OF AMERICA, ) ) Plaintiff, ) ) v. ) No. 07-00200-06-CR-W-FJG ) MICHAEL FITZWATER, ) ) ) Defendant.
More informationIN THE UNITED STATES DISTRICT COURT FOR THE WESTERN DISTRICT OF MISSOURI WESTERN DIVISION PLEA AGREEMENT
IN THE UNITED STATES DISTRICT COURT FOR THE WESTERN DISTRICT OF MISSOURI WESTERN DIVISION UNITED STATES OF AMERICA, Plaintiff, v. Case No. 15-00106-01-CR-W-DW TIMOTHY RUNNELS, Defendant. PLEA AGREEMENT
More informationRULE VIII ADMISSION OF FOREIGN ATTORNEYS AS AUTHORIZED HOUSE COUNSEL
RULE VIII ADMISSION OF FOREIGN ATTORNEYS AS AUTHORIZED HOUSE COUNSEL A. Purpose. This rule is intended to facilitate the relocation of persons employed by or to be employed by any business organization,
More informationGDPR and India. By ADITI CHATURVEDI Edited by AMBER SINHA. The Centre for Internet and Society, India
GDPR and India By ADITI CHATURVEDI Edited by AMBER SINHA The Centre for Internet and Society, India Designed by Saumyaa Naidu Shared under Creative Commons Attribution 4.0 International license At present,
More informationExecutive Order Access to Classified Information August 2, 1995
1365 to empower individuals and families to help themselves, including our expansion of the earned-income tax cut for low- and moderate-income working families, and our proposals for injecting choice and
More informationA Message to Legal Personnel
A Message to Legal Personnel Pursuant to the Sarbanes-Oxley Act of 2002, the SEC adopted Part 205, an extensive set of rules that impose new obligations on attorneys (both in-house attorneys and outside
More informationTHE PERSONAL DATA (PROTECTION) BILL, 2013
THE PERSONAL DATA (PROTECTION) BILL, 2013 [Long Title] [Preamble] CHAPTER I PRELIMINARY 1. Short title, extent and commencement. (1) This Act may be called the Personal Data (Protection) Act, 2013. (2)
More informationGuidelines For the Organization and Operation of Student Government Associations
1 Guidelines For the Organization and Operation of Student Government Associations REVISED Effective May 20, 2014 The City Colleges of Chicago 226 W. Jackson Blvd. Chicago, IL. 60606 2 ARTICLE I INTRODUCTION
More informationIC Chapter 6. Indiana DNA Data Base
IC 10-13-6 Chapter 6. Indiana DNA Data Base IC 10-13-6-1 "Combined DNA Index System" Sec. 1. As used in this chapter, "Combined DNA Index System" refers to the Federal Bureau of Investigation's national
More informationData Processing Addendum
Data Processing Addendum Effective 25 May 2018 or if later the date of Processor s receipt of a valid and fully executed version (the Effective Date ) This Data Processing Addendum forms part of the current
More informationARTICLE 29 DATA PROTECTION WORKING PARTY
ARTICLE 29 DATA PROTECTION WORKING PARTY 18/EN WP 257 rev.01 Working Document setting up a table with the elements and principles to be found in Processor Binding Corporate Rules Adopted on 28 November
More informationThe University of Montana Greek Fraternal Organizations JUDICIAL PROCESS
The University of Montana Greek Fraternal Organizations JUDICIAL PROCESS ARTICLE I. INTRODUCTION SECTION I. IMPORTANCE OF FRATERNAL ORGANIZATIONS Academically and civically engaged fraternities and sororities
More informationBERMUDA VIRTUAL CURRENCY BUSINESS ACT 2018 BR/ 2018: TABLE OF CONTENTS PART 1 PRELIMINARY
BERMUDA VIRTUAL CURRENCY BUSINESS ACT 2018 BR/ 2018: TABLE OF CONTENTS PART 1 PRELIMINARY 1. Citation 2. Interpretation 3. Meaning of "director", "controller", "senior executive" and "associate" 4. Carrying
More informationAnyComms Plus. End User Licence Agreement. Agreement for the provision of data exchange software licence for end users
AnyComms Plus End User Licence Agreement Agreement for the provision of data exchange software licence for end users i March 2018 V4 Terms & Conditions Definitions and Interpretation Commencement Date
More informationDATA PROCESSING AGREEMENT. between [Customer] (the "Controller") and LINK Mobility (the "Processor")
DATA PROCESSING AGREEMENT between [Customer] (the "Controller") and LINK Mobility (the "Processor") Controller Contact Information Name: Title: Address: Phone: Email: Processor Contact Information Name:
More informationBylaws Peer Assistance Foundation of the Texas Society of Certified Public Accountants, Inc.
Bylaws Peer Assistance Foundation of the Texas Society of Certified Public Accountants, Inc. APPROVED BY: TSCPA Board of Directors EFFECTIVE DATE: June 27, 2009 ARTICLE I - NAME AND PURPOSE (1) The name
More informationTake me back to the Home Page. NotaryClasses.com Sample Notary Exam 1 FINES and PENALTIES
Take me back to the Home Page NotaryClasses.com Sample Notary Exam 1 FINES and PENALTIES PLEASE READ THIS SECTION BEFORE BEGINNING THE SAMPLE EXAM Our program is designed to help you pass the notary exam
More informationYORK COUNTY SOLID WASTE AND REFUSE AUTHORITY RECYCLABLE MATERIALS REGISTRATION RULES AND REGULATIONS
INCORPORATES ALL AMENDMENTS as of September 17, 2014 Effective January 1, 2015 YORK COUNTY SOLID WASTE AND REFUSE AUTHORITY RECYCLABLE MATERIALS REGISTRATION RULES AND REGULATIONS PREAMBLE The Authority
More information(Translation) The Trust for Transactions in Capital Market Act B.E (2007)
(Translation) The Trust for Transactions in Capital Market Act B.E. 2550 (2007) BHUMIBOL ADULYADEJ, REX., Given on the 30th Day of December B.E. 2550; Being the 62nd Year of the Present Reign. His Majesty
More informationGuidelines on the application and setting of administrative fines for the purposes of the Regulation 2016/679
17/EN WP 253 Guidelines on the application and setting of administrative fines for the purposes of the Regulation 2016/679 Adopted on 3 October 2017 This Working Party was set up under Article 29 of Directive
More informationWorld Bank Group Directive
World Bank Group Directive Staff Rule 3.00 - Office of Ethics and Business Conduct (EBC) Bank Access to Information Policy Designation Public Catalogue Number EXC10.03-DIR.111 Issued September 15, 2016
More informationBJB Motor Company Limited (BJB) - Data Protection Act 1998 Policy & Procedures
BJB Motor Company Limited (BJB) - Data Protection Act 1998 Policy & Procedures Version History and Document Approval Version History: Version Date Author Reason 1.0 31 st December 2017 Barry Wilson Document
More informationSUDAN Patents Act Act No. 58 of 1971 ENTRY INTO FORCE: October 15, 1971
SUDAN Patents Act Act No. 58 of 1971 ENTRY INTO FORCE: October 15, 1971 TABLE OF CONTENTS Part I Preliminary Provisions Chapter I 1. Title 2. Definitions Chapter II Terms of Patentability 3. Patentable
More informationVictims Rights and Support Act 2013 No 37
New South Wales Victims Rights and Support Act 2013 No 37 Contents Part 1 Part 2 Preliminary Page 1 Name of Act 2 2 Commencement 2 3 Definitions 2 Victims rights Division 1 Preliminary 4 Object of Part
More informationTexas Administrative Code
Texas Administrative Code TITLE 25 PART 1 CHAPTER 157 HEALTH SERVICES DEPARTMENT OF STATE HEALTH SERVICES EMERGENCY MEDICAL CARE SUBCHAPTER C EMERGENCY MEDICAL SERVICES TRAINING AND COURSE APPROVAL RULE
More informationJUDICIARY AND JUDICIAL PROCEDURE (42 PA.C.S.) AND LAW AND JUSTICE (44 PA.C.S.) - OMNIBUS AMENDMENTS 25, 2008, P.L.
JUDICIARY AND JUDICIAL PROCEDURE (42 PA.C.S.) AND LAW AND JUSTICE (44 PA.C.S.) - OMNIBUS AMENDMENTS Act of Sep. 25, 2008, P.L. 1026, No. 81 Cl. 42 Session of 2008 No. 2008-81 HB 4 AN ACT Amending Titles
More informationThis article shall be known as and referred to as "The Small Loan Privilege Tax Law" of this state.
75-67-201. Title of article. 75-67-201. Title of article This article shall be known as and referred to as "The Small Loan Privilege Tax Law" of this state. Cite as Miss. Code 75-67-201 Source: Codes,
More informationLegislative Brief The Information Technology (Amendment) Bill, 2006
Legislative Brief The Information Technology (Amendment) Bill, 2006 Highlights of the Bill The Bill was introduced in the Lok Sabha on 15 th December, 2006 and referred to the Standing Committee on Information
More informationUNDERSTANDING THE HIPAA/HITECH BREACH NOTIFICATION RULE 2/25/14
UNDERSTANDING THE HIPAA/HITECH BREACH NOTIFICATION RULE 2/25/14 RULES Issued August 19, 2009 Requires Covered Entities to notify individuals of a breach as well as HHS without reasonable delay or within
More informationOREGON YOUTH SOCCER ASSOCIATION, Inc BYLAWS. Part I General
OREGON YOUTH SOCCER ASSOCIATION, Inc BYLAWS Part I General Bylaw 101 NAME This Association shall be known as the Oregon Youth Soccer Association, Inc., a nonprofit corporation hereafter referred to as
More informationDATA PROTECTION (AMENDMENT) REGULATIONS Amendments to the Data Protection Regulations Insertion of new sections...
DATA PROTECTION (AMENDMENT) REGULATIONS 2018 DATA PROTECTION (AMENDMENT) REGULATIONS 2018 1. Amendments to the Data Protection Regulations 2015... 2 2. Insertion of new sections... 9 3. Short title, extent
More informationAnti-Discrimination, Harassment and Bullying Policy
DEFINTIONS Discrimination Unlawful discrimination may be either direct or indirect and takes place where a person treats another person unfavourably on the basis of: race; age; sexual orientation; lawful
More informationEnvironmental Laws. Enforcement of First Nation Land Laws & Environmental Protection Laws
Environmental Laws Enforcement of First Nation Land Laws & Environmental Protection Laws What is Enforcement? Definitions of enforcement To compel or impose observance of the law To encourage compliance
More informationINTERSTATE COMPACT FOR THE SUPERVISION OF ADULT OFFENDERS PREAMBLE
INTERSTATE COMPACT FOR THE SUPERVISION OF ADULT OFFENDERS PREAMBLE Whereas: The interstate compact for the supervision of Parolees and Probationers was established in 1937, it is the earliest corrections
More informationCriminal Background Checks
Criminal Background Checks Section: Chapter: Date Updated: V: Human Resources 12 June 14, 2012October 23, 2014 12.1 Criminal Background Check Requirements 12.1.1 Purpose The University of Texas at El Paso
More informationKAISER FOUNDATION HOSPITALS ON BEHALF OF KAISER FOUNDATION HEALTH PLAN OF THE MID-ATLANTIC STATES, INC.
KAISER FOUNDATION HOSPITALS ON BEHALF OF KAISER FOUNDATION HEALTH PLAN OF THE MID-ATLANTIC STATES, INC. KP CONTRACTOR AFFILIATE WEB SITES LICENSE PROVIDER ENTITY AGREEMENT License Subject to the terms
More informationPARLIAMENT OF THE DEMOCRATIC SOCIALIST REPUBLIC OF SRI LANKA
PARLIAMENT OF THE DEMOCRATIC SOCIALIST REPUBLIC OF SRI LANKA SRI LANKA ELECTRICITY ACT, No. 20 OF 2009 [Certified on 8th April, 2009] Printed on the Order of Government Published as a Supplement to Part
More informationGENERAL ASSEMBLY OF NORTH CAROLINA 1995 SESSION CHAPTER 545 SENATE BILL 53
GENERAL ASSEMBLY OF NORTH CAROLINA 1995 SESSION CHAPTER 545 SENATE BILL 53 AN ACT TO REQUIRE THE REGISTRATION OF PERSONS CONVICTED OF CERTAIN CRIMINAL SEXUAL OFFENSES. The General Assembly of North Carolina
More information